Cyber Threat & Vulnerability Manager

Cyber UK

Reading

Hybrid

GBP 81,000 - 99,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Car Allowance: £5,800
Annual Leave: 26 days holiday, increasing to 30
Generous Pension Scheme
Access to health and wellbeing benefits

Job summary

Cyber UK is seeking a Cyber Threat & Vulnerability Manager to lead vulnerability management efforts and drive security initiatives. This role involves collaborating with various stakeholders to implement and optimize vulnerability management practices while ensuring compliance with standards such as GDPR and ISO 27001. Candidates should have strong experience in cyber risk management, vulnerability remediation, and excellent communication skills. The position is hybrid located in Clearwater Court, Reading with a competitive salary up to £90,000 and additional benefits.

Qualifications

  • Experience leading or managing threat and vulnerability management processes within a complex enterprise environment.
  • Strong experience in vulnerability remediation and patch management across diverse technology stacks.
  • Excellent communication skills with the ability to explain complex security concepts to non-technical stakeholders.

Responsibilities

  • Lead vulnerability management across the enterprise.
  • Establish and manage the operating model for vulnerability management.
  • Collaborate with stakeholders to develop threat assessment and TVM strategies.

Skills

Threat and vulnerability management processes
Vulnerability remediation
Patch management
Risk reduction
Analytical skills
Communication skills

Education

Degree in Cyber Security, Computer Science, or a related field
Professional certifications such as CISSP, CISM, or CCSP

Tools

Tenable
Qualys

Job description

As a Cyber Threat & Vulnerability Manager, you will play a key role within the Security Operations function at Thames Water, leading the organisation’s approach to identifying, assessing, and reducing cyber risk across both IT and OT environments. Working closely with cybersecurity leadership, enterprise architects, and business stakeholders, you will ensure that threat and vulnerability management (TVM) capabilities are effective, scalable, and continuously improved. This role contributes to Thames Water’s cybersecurity resilience by establishing robust vulnerability management frameworks, integrating threat intelligence into risk processes, and driving proactive security improvements. You will collaborate across the organisation to reduce risk exposure, enhance cyber maturity, and ensure compliance with industry standards while maintaining strong governance and reporting practices. You must be able to obtain Counter Terrorist Check (CTC) Clearance to be eligible for this position.

What you’ll be doing as a Cyber Threat & Vulnerability Manager
  • Lead vulnerability management across the enterprise, ensuring frameworks for identification, categorisation, and mitigation are defined, implemented, and maintained.
  • Establish and manage the operating model for vulnerability management, ensuring alignment and adoption across the business.
  • Collaborate with stakeholders to develop threat assessment and TVM strategies aligned to organisational objectives.
  • Develop and maintain TVM documentation, including policies, standards, and procedures.
  • Integrate vulnerability management and threat intelligence tools with existing systems and infrastructure.
  • Evaluate and recommend tools, technologies, and vendors to support TVM capabilities.
  • Investigate newly identified vulnerabilities and provide risk‑based mitigation and remediation guidance.
  • Coordinate with technology and business stakeholders to ensure effective patching and vulnerability remediation.
  • Maintain and evolve a cyber threat assessment methodology aligned to industry standards.
  • Perform proactive threat hunting to identify emerging risks across the technology estate.
  • Develop and maintain dashboards and reporting to track vulnerability and threat metrics.
  • Ensure compliance with relevant standards and regulations such as GDPR, NIS, and ISO 27001.
  • Monitor and optimise TVM tool performance, implementing improvements where required.
  • Provide technical leadership and guidance to junior team members.
  • Build and maintain strong relationships with vendors and service providers.
  • Stay current with emerging threats, technologies, and best practices to continuously enhance security operations.
  • Support major incident response where required as part of Security Operations.

Base location – Hybrid – Clearwater Court, Reading.
Working pattern – 36 hours Monday to Friday.

What you should bring to the role
  • Experience leading or managing threat and vulnerability management processes within a complex enterprise environment.
  • Strong experience in vulnerability remediation and patch management across diverse technology stacks.
  • Experience managing cyber risk across dynamic and evolving digital environments.
  • Ability to line manage and develop at least one team member towards shared objectives.
  • Strong analytical, problem‑solving, and decision‑making skills.
  • Experience working with third‑party delivery partners and vendors.
  • Excellent communication skills with the ability to explain complex security concepts to non‑technical stakeholders.
  • Strong organisational, planning, and strategic thinking capabilities.
  • Innovative mindset with a focus on continuous improvement and risk reduction.
Technical experience and skills
  • Hands‑on experience with vulnerability management tools such as Tenable and Qualys.
  • Strong understanding of TVM concepts, including threat modelling, vulnerability assessment, and OSINT.
  • Knowledge of patch management approaches across SaaS, IaaS, end‑user computing, and server environments.
  • Ability to develop metrics and dashboards that demonstrate risk reduction and control effectiveness.
  • Experience aligning security practices with frameworks such as ISO 27001, NIS, and GDPR.
Desirable qualifications and experience
  • Experience working within utilities, critical infrastructure, or large enterprise environments.
  • Experience managing vulnerabilities in operational technology (OT) environments.
  • Familiarity with legacy systems and managing risk in ageing technology estates.
  • Experience supporting cyber security programmes and transformation initiatives.
Desirable technical skills and qualifications
  • Degree in Cyber Security, Computer Science, Information Technology, Engineering, or a related field.
  • Professional certifications such as CISSP, CISM, or CCSP.
  • TVM‑specific certifications such as Certified Threat Intelligence Analyst (CTIA) or Certified Vulnerability Assessor (CVA).
  • Knowledge of penetration testing or ethical hacking practices.
What’s in it for you?
  • Competitive salary: Up to £90,000 per annum, depending on experience.
  • Car Allowance: £5,800.
  • Annual Leave: 26 days holiday per year, increasing to 30 with the length of service (plus bank holidays).
  • Performance‑related pay plan directly linked to company performance measures and targets.
  • Generous Pension Scheme through AON.
  • Access to a wide range of benefits to support health, wellbeing and finances, including annual health checks, physiotherapy, counselling, Cycle to Work schemes, shopping vouchers and life assurance.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Resilience Testing Lead
Cyber Resilience Testing Lead

Cyber UK • Reading

Hybrid
GBP 68,000 - 78,000
Annual Leave – 26 days holiday per year, increasing to 30 with length of service.
Generous Pension Scheme through AON.
Access to health and wellbeing benefits.
Cyber Threat & Vulnerability Analyst
Cyber Threat & Vulnerability Analyst

Pertemps Thames Water • Reading

Hybrid
GBP 59,000 - 72,000
Salary up to £65,000
26 days leave + bank holidays
Pension scheme
Security Penetration Tester
Security Penetration Tester

Pertemps Thames Water • Reading

Hybrid
GBP 65,000 - 79,000
Competitive salary up to £72,000 per年
26 days holiday plus bank holidays
Generous pension scheme
+2
Programme Manager
Programme Manager

idibu • Reading

Hybrid
GBP 90,000 - 95,000
Car Allowance
Pension Scheme
Health & Wellbeing benefits
+1
Programme Manager
Programme Manager

Pertemps Thames Water • Reading

Hybrid
GBP 90,000 - 95,000
Car Allowance
Annual Leave 26 days increasing with 2
Pension Scheme
+2
Control Testing Automation & Monitoring Lead
Control Testing Automation & Monitoring Lead

Thames Water Utilities Limited • Reading

On-site
GBP 65,000 - 80,000
Competitive salary
26 days annual leave
Pension scheme
+1
Strategic Cyber Threat & Vulnerability Analyst
Strategic Cyber Threat & Vulnerability Analyst

Pertemps Thames Water • Reading

Hybrid
GBP 59,000 - 72,000
Salary up to £65,000
26 days leave + bank holidays
Pension scheme
Programme Manager
Programme Manager

JAM Recruitment Ltd • Reading

On-site
GBP 90,000 - 95,000
Car allowance
Annual leave 26–30 days
Generous pension
+2
Programme Manager
Programme Manager

Thames Water Utilities Limited • Reading

Hybrid
GBP 90,000 - 95,000
Annual Leave 26 days
Pension Scheme
Performance-related pay
Control Tester
Control Tester

Pertemps Thames Water • Reading

Hybrid
GBP 40,000 - 55,000
Pension scheme
Health and wellbeing benefits
Performance-based pay
+1